Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It would seem that this "crack" could simply be circumvented by using an alphanumeric password and/or setting the iPhone to shred its crypto key after 10 consecutive password failures. Obviously, neither of these are standard features, but both are available.


I guess that by "neither of these are standard features" you mean "not on by default". It's two clicks in settings to turn these on.


Or two clicks for your corporate sysadmin to force it :-)


Yay. Exchange policies + toddlers = fun times

This is why I don't sync my phone to my work email. It's just not worth it.


> setting the iPhone to shred its crypto key after 10 consecutive password failures

This seems to do decryption on its own, so this setting wouldn't have an effect. If you have the data sitting there and have the encrypted key, there's nothing stopping you from directly decrypting the key with every possible passcode and checking it for validity.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: